Lucene search

K
cve[email protected]CVE-2022-34373
HistoryAug 31, 2022 - 8:15 p.m.

CVE-2022-34373

2022-08-3120:15:08
CWE-22
web.nvd.nist.gov
23
4
dell
command
integration
suite
system center
cve-2022-34373
arbitrary file write vulnerability
nvd

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.9%

Dell Command | Integration Suite for System Center, versions prior to 6.2.0, contains arbitrary file write vulnerability. A locally authenticated malicious user could potentially exploit this vulnerability in order to perform an arbitrary write as system.

Affected configurations

NVD
Node
dellcommand_\|_integration_suite_for_system_centerRange<6.2.0

CNA Affected

[
  {
    "product": "CPG SW",
    "vendor": "Dell",
    "versions": [
      {
        "lessThan": "6.2.0",
        "status": "affected",
        "version": "unspecified",
        "versionType": "custom"
      }
    ]
  }
]

Social References

More

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.9%

Related for CVE-2022-34373